CVE-2020-15778
HighAdvisory
Published 24 Jul 2020In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.4
- base score, highest
- EPSS
- 0.130
- 96th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 258
- of 17,781 indexed, latest versions
- Container images
- 255
- deployed by those charts
- Fix available
- 1 of 2
- affected packages
Red Hat Security Advisory: openssh security update
Carried by container images the latest versions of 258 of 17,781 indexed charts deploy, on 255 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| opensshdeb | 1:6.6p1-2ubuntu2, 1:6.6p1-2ubuntu2.13, 1:7.2p2-4ubuntu2.2, 1:7.2p2-4ubuntu2.4+29 more | no fix listed | 246 |
| opensshrpm | 8.0p1-4.el8_1, 8.0p1-6.el8_4.2, 8.0p1-9.el8, 8.0p1-15.el8_6.3+1 more | 0:8.0p1-24.el8 | 9 |
Charts affected
258 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| codegentest-opea | 1.0.0 | 1 of 5See more | 28,814 |
| codetranstest-opea | 1.0.0 | 1 of 5See more | 28,385 |
| docsumtest-opea | 1.0.0 | 1 of 5See more | 28,858 |
| jenkinstnh | 2.7.1 | 1 of 2See more | 4,423 |
| tfy-distributortruefoundryVerified publisher | 0.0.1 | 1 of 4See more | 17,323 |
| demo-backendv2flyVerified publisher | 0.0.3 | 1 of 1See more | 14,358 |
| jenkinswebencryptor | 1.9.18 | 1 of 1See more | 2,476 |
| marge-botwiremindVerified publisher | 1.4.4 | 1 of 1See more | 5,542 |
Container images carrying it
255 by charts deploying them
A fixed version is listed for 1 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| quay.io/ | 6ba82beff18e | openssh | 0:8.0p1-24.el8 | 1 |
| quay.io/ | e0d9b93dbf2b | openssh | no fix listed | 1 |
| registry.gitlab.com/ | 0e3cd8c7776d | openssh | no fix listed | 1 |
| registry.k8s.io/ | 0e64aedb0d0a | openssh | no fix listed | 1 |
| registry.k8s.io/ | fd9722fd02e3 | openssh | no fix listed | 1 |